Coming Soon...

Q-CERT website is currently under maintenance. We should be back shortly. Thank you for yor patience.

Google Chrome rolls out critical security update-Feb 2022

Issued: 
Sunday, 6 February, 2022
Last Revision: 
Sunday, 6 February, 2022
Vendor: 
Product: 
Severity Level: 
Summary: 

Google has released Chrome 98.0.4758.80/81/82 for windows and  98.0.4758.80 for mac and linux contains a number of fixes and improvements. This security update fixes 27 vulnerabilities, eight of which are rated as high risk and ten as medium. An attacker could exploit some of these vulnerabilities in order to execute arbitrary code on the target system with the same privileges that Chrome has.

 

CVE-2022-0452 and CVE-2022-0453 are two use-after-free vulnerabilities that affect safe browsing and reader mode, respectively.

 

CVE/Vulnerability

       Description 

CVSS3.0 Score

CVE-2022-0452

 Use-after-free vulnerabilities

n/a

CVE-2022-0453

 Use-after-free vulnerabilities

n/a

 

Table 1: Vulnerability details 

 

 

 

CVE/Vulnerability

                Affected Product(s)

CVE-2022-0452

Chrome web browser prior to  98.0.4758.80 for Windows, Mac and Linux

CVE-2022-0453

Chrome web browser prior to  98.0.4758.80 for Windows, Mac and Linux

 

                                                                               Table 2: Vulnerable versions                                  

 

 

Recommendation: 

Organizers are encouraged to upgrade to the stable channel 98.0.4758.80/81/82 for Windows   and Chrome 98.0.4758.80 for macOS and Linux as soon as possible.